http://tinyurl.com/yl7at4

"More and more, developers are becoming aware of the threats posed by
malicious code, and SQL injection in particular, and by leaving code
vulnerable to such attacks. However, while SQL is the most popular
type of code injection attack, there are several others that can be
just as dangerous to your applications and your data, including LDAP
injection and XPath injection. While these may not be as well-known to
developers, they are already in the hands of hackers, and they should
be of concern.

In addition, much of the common wisdom concerning remediation of
malicious code injection attacks is inadequate or inaccurate.
Following these flawed recommendations will not improve the security
of your application, but will only leave you with a false sense of
security until the next time your application is compromised and your
data is stolen, erased, or tampered with. It is important for
developers to acquaint themselves with all code injection types that
exist as well as the proper ways to fix any vulnerabilities to
malicious code."

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Introducing the Fusion Authority Quarterly Update. 80 pages of hard-hitting,
up-to-date ColdFusion information by your peers, delivered to your door four 
times a year.
http://www.fusionauthority.com/quarterly

Archive: 
http://www.houseoffusion.com/groups/CF-Community/message.cfm/messageid:221220
Subscription: http://www.houseoffusion.com/groups/CF-Community/subscribe.cfm
Unsubscribe: 
http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=11502.10531.5

Reply via email to